搜索
您的当前位置:首页正文

netapp加入域控制器

来源:六九路网
首先创建一个域控制器,以win2008为例,在命令行敲入DCPROMO,然后2008开始创建域控制器,域名为bcf.netapp.com,主机名bcf,地址192.168.50.206,自身创建DNS服务器(192.168.50.206),以下为2008创建域控制器完后的信息(域控密码我使用的和administrator密码一样): [DCInstall]

; New forest promotion

ReplicaOrNewDomain=Domain NewDomain=Forest

NewDomainDNSName=bcf.netapp.com ForestLevel=4

DomainNetbiosName=BCF DomainLevel=4 InstallDNS=Yes ConfirmGc=Yes

CreateDNSDelegation=No

DatabasePath=\"C:\\Windows\\NTDS\" LogPath=\"C:\\Windows\\NTDS\"

SYSVOLPath=\"C:\\Windows\\SYSVOL\"

; Set SafeModeAdminPassword to the correct value prior to using the unattend file SafeModeAdminPassword= ; Run-time flags (optional) ; RebootOnCompletion=Yes

做完以后在存储上: 作如下操作: netapp207> setup

The setup command will rewrite the /etc/rc, /etc/exports,

/etc/hosts, /etc/hosts.equiv, /etc/dgateways, /etc/nsswitch.conf, and /etc/resolv.conf files, saving the original contents of these files in .bak files (e.g. /etc/exports.bak). Are you sure you want to continue? [yes]

NetApp Release 7.3.5.1: Sat Jan 29 12:45:56 PST 2011

System ID: 0142233194 (netapp207); partner ID: 0142233057 (netapp1) System Serial Number: 850000074779 (netapp207) System Rev: B0

System Storage Configuration: Single-Path HA System ACP Connectivity: NA slot 0: System Board

Processors: 2

Memory Size: 4096 MB slot 0: Private BGE 10/100 Ethernet Controller

e0P MAC Address: 00:a0:98:2b:2b:a4 (auto-unknown-cfg_down) slot 0: Dual 10/100/1000 Ethernet Controller G20

e0a MAC Address: 00:a0:98:2b:2b:a9 (auto-100tx-fd-up)

e0b MAC Address: 00:a0:98:2b:2b:a8 (auto-unknown-cfg_down) e0c MAC Address: 00:a0:98:2b:2b:a7 (auto-unknown-cfg_down) e0d MAC Address: 00:a0:98:2b:2b:a6 (auto-unknown-cfg_down) slot 0: Interconnect HBA: Mellanox IB MT25204 slot 0: FC Host Adapter 0a slot 0: FC Host Adapter 0b slot 0: SAS Host Adapter 0c

9 Disks: 7627.9GB 1 shelf with ESAS slot 0: SAS Host Adapter 0d

slot 0: ATA/IDE Adapter 0e (0x000001f0) 0e.0 977MB Baseboard Management Controller: Firmware Version: 1.3 IPMI version: 2.0 DHCP: on

BMC MAC address: 00:a0:98:2b:2b:a5 IP address: 0.0.0.0 IP mask: 0.0.0.0 Gateway IP address: 0.0.0.0

BMC ARP interval: 10 seconds BMC has (1) user: naroot ASUP enabled: on

ASUP mailhost: 0.0.0.0

ASUP from: postmaster@bcf.netapp.com ASUP recipients: autosupport@netapp.com Uptime: 0 Days, 23:17:16 Please enter the new hostname [netapp207]: Do you want to enable IPv6? [n]:

Do you want to configure virtual network interfaces? [n]:

Please enter the IP address for Network Interface e0a [192.168.50.207]: Please enter the netmask for Network Interface e0a [255.255.255.0]: Should interface e0a take over a partner IP address during failover? [n]:

Please enter media type for e0a {100tx-fd, tp-fd, 100tx, tp, auto (10/100/1000)} [auto]: Please enter flow control for e0a {none, receive, send, full} [full]: Do you want e0a to support jumbo frames? [n]:

Please enter the IP address for Network Interface e0b []:

Should interface e0b take over a partner IP address during failover? [n]: Please enter the IP address for Network Interface e0c []:

Should interface e0c take over a partner IP address during failover? [n]: Please enter the IP address for Network Interface e0d []:

Should interface e0d take over a partner IP address during failover? [n]: Would you like to continue setup through the web interface? [n]:

Please enter the name or IP address of the IPv4 default gateway [192.168.50.1]: The administration host is given root access to the filer's

/etc files for system administration. To allow /etc root access to all NFS clients enter RETURN below.

Please enter the name or IP address of the administration host: Please enter timezone [Asia/Shanghai]: Where is the filer located? []:

What language will be used for multi-protocol files (Type ? for list)?: language not set

Enter the root directory for HTTP files [/vol/vol0/home/http]: Do you want to run DNS resolver? [y]:

Please enter DNS domain name [bcf.bcf.netapp.com]: You may enter up to 3 nameservers

Please enter the IP address for first nameserver [192.168.50.206]: Do you want another nameserver? [n]: Do you want to run NIS client? [n]:

This system will send event messages and weekly reports to NetApp Technical Support. To disable this feature, enter \"options autosupport.support.enable off\" within 24 hours. Enabling Autosupport can significantly speed problem determination and resolution should a problem occur on your system. For further information on Autosupport, please see: http://now.netapp.com/autosupport/

Press the return key to continue.

The Baseboard Management Controller (BMC) provides remote management capabilities

including console redirection, logging and power control. It also extends autosupport by sending down filer event alerts.

Would you like to configure the BMC [y]: n

The Shelf Alternate Control Path Management process provides the ability to recover from certain SAS shelf module failures and provides a level of availability that is higher than systems not using the Alternate Control Path Management process.

Do you want to configure the Shelf Alternate Control Path Management interface for SAS shelves [n]:

然后做cifs setup: cifs setup

This process will enable CIFS access to the filer from a Windows(R) system. Use \"?\" for help at any prompt and Ctrl-C to exit without committing changes.

This filer is currently a member of the Windows-style workgroup 'WORKGROUP'.

Do you want to continue and change the current filer account information? [n]: y Your filer does not have WINS configured and is visible only to clients on the same subnet.

Do you want to make the system visible via WINS? [n]:

This filer is currently configured as a multiprotocol filer. Would you like to reconfigure this filer to be an NTFS-only filer? [n]: The default name for this CIFS server is 'NETAPP1'. Would you like to change this name? [n]:

Data ONTAP CIFS services support four styles of user authentication. Choose the one from the list below that best suits your situation.

(1) Active Directory domain authentication (Active Directory domains only)

(2) Windows NT 4 domain authentication (Windows NT or Active Directory domains) (3) Windows Workgroup authentication using the filer's local user accounts (4) /etc/passwd and/or NIS/LDAP authentication

Selection (1-4)? [1]: 1

What is the name of the Active Directory domain? [BCF.NETAPP.COM]: In order to create an Active Directory machine account for the filer, you must supply the name and password of a Windows account with

sufficient privileges to add computers to the BCF.NETAPP.COM domain. Enter the name of the Windows user [Administrator@BCF.NETAPP.COM]: Password for Administrator@BCF.NETAPP.COM:

Could not authenticate with domain controller: Filer and Domain controller clocks are more than 5 minutes apart.

Filer and Domain Controller times must be synchronized in Windows 2000 domains. CIFS - unable to log into domain as Administrator@BCF.NETAPP.COM. Please try again (Ctrl-C to exit).

Enter the name of the Windows user [Administrator@BCF.NETAPP.COM]:

会发现有报错Could not authenticate with domain controller: Filer and Domain controller clocks are more than 5 minutes apart.

这个地方要注意我们需要调整存储的时区和时间,和域控的时间不能相隔太远 作如下操作:

netapp207> timezone Asia/Shanghai netapp207> date

Tue Jul 5 13:12:54 CST 2011 netapp207> date 201107051321

Warning: currently syncing to the time kept by the cluster partner; the partner's time setting will eventually override the time set by the \"date\" command. Consider running the \"date\" command on the partner.

Tue Jul 5 13:21:00 CST 2011

netapp207> Tue Jul 5 13:21:00 CST [netapp207: rc:info]: Time changed (via \"date\") to Tue Jul 5 13:21:00 CST 2011 netapp207> date

Tue Jul 5 13:21:04 CST 2011

然后做cifs setup netapp207>

netapp207> cifs setup

This process will enable CIFS access to the filer from a Windows(R) system. Use \"?\" for help at any prompt and Ctrl-C to exit without committing changes.

This filer is currently a member of the Windows-style workgroup 'WORKGROUP'.

Do you want to continue and change the current filer account information? [n]: y Your filer does not have WINS configured and is visible only to clients on the same subnet.

Do you want to make the system visible via WINS? [n]:

This filer is currently configured as a multiprotocol filer. Would you like to reconfigure this filer to be an NTFS-only filer? [n]: The default name for this CIFS server is 'NETAPP207'. Would you like to change this name? [n]:

Data ONTAP CIFS services support four styles of user authentication. Choose the one from the list below that best suits your situation.

(1) Active Directory domain authentication (Active Directory domains only)

(2) Windows NT 4 domain authentication (Windows NT or Active Directory domains) (3) Windows Workgroup authentication using the filer's local user accounts (4) /etc/passwd and/or NIS/LDAP authentication

Selection (1-4)? [1]:

What is the name of the Active Directory domain? [BCF.NETAPP.COM]: In order to create an Active Directory machine account for the filer, you must supply the name and password of a Windows account with

sufficient privileges to add computers to the BCF.NETAPP.COM domain. Enter the name of the Windows user [Administrator@BCF.NETAPP.COM]: Password for Administrator@BCF.NETAPP.COM:

CIFS - Logged in as Administrator@BCF.NETAPP.COM.

The user that you specified has permission to create the filer's

machine account in several (2) containers. Please choose where you would like this account to be created.

(1) CN=computers

(2) OU=Domain Controllers (3) None of the above

Selection (1-3)? [1]: (此处要注意选项,我选择的是1,就是不创建新的用户组,直接在域的computers组里显示) CIFS - Starting SMB protocol...

Currently the user \"NETAPP207\\administrator\" and members of the group \"BCF\\Domain Admins\" have permission to administer CIFS on this filer. You may specify an additional user or group to be added to the filer's \"BUILTIN\\Administrators\" group, thus giving them administrative privileges as well.

Would you like to specify a user or group that can administer CIFS? [n]: Welcome to the BCF.NETAPP.COM (BCF) Active Directory(R) domain.

CIFS local server is running. netapp207>

此时我们会发现域加入成功,现在可以来查看一下加入域的详细信息: netapp207> cifs domaininfo

Tue Jul 5 13:23:23 CST [netapp207: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Starting AD LDAP server address discovery for BCF.NETAPP.COM.

Tue Jul 5 13:23:24 CST [netapp207: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Found 3 AD LDAP server addresses using DNS site query (Default-First-Site-Name).

Tue Jul 5 13:23:24 CST [netapp207: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Found 1 AD LDAP server addresses using generic DNS query.

Tue Jul 5 13:23:25 CST [netapp207: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- AD LDAP server address discovery for BCF.NETAPP.COM complete. 3

unique addresses found.

NetBios Domain: BCF

Windows 2003 Domain Name: bcf.netapp.com Type: Windows 2003

Filer AD Site: Default-First-Site-Name

Current Connected DCs: \\\\BCF Total DC addresses found: 3 Preferred Addresses:

None Favored Addresses:

192.168.50.206 BCF PDC 192.168.127.1 PDC 192.168.47.1 PDC Other Addresses:

None

Connected AD LDAP Server: \\\\bcf.bcf.netapp.com Preferred Addresses:

None Favored Addresses:

192.168.50.206 bcf.bcf.netapp.com 192.168.47.1 bcf.bcf.netapp.com 192.168.127.1 bcf.bcf.netapp.com Other Addresses:

None netapp207> dns info DNS is enabled

DNS caching is enabled

9 cache hits 1 cache miss 1 cache entry 0 expired entries 0 cache replacements

IP Address State Last Polled Avg RTT Calls Errs

-------------------------------------------------------------------------------------------------------------

192.168.50.206 UP Tue Jul 5 13:23:24 CST 2011

0 25 0

Default domain: bcf.bcf.netapp.com

Search domains: bcf.bcf.netapp.com bcf.netapp.com netapp.com

为了能在域上管理存储,我们需要在存储上创建一系列的vol,此处以卷snapmirror_source为例

netapp207> df -h

Filesystem total used avail capacity Mounted on

/vol/vol0/ 537GB 507MB 536GB 0% /vol/vol0/

/vol/vol0/.snapshot 134GB 195MB 134GB 0% /vol/vol0/.snapshot netapp207> vol create mirror_source aggr0 2g

exportfs [Line 2]: NFS not licensed; local volume /vol/vol0 not exported

exportfs [Line 3]: NFS not licensed; local volume /vol/vol0/home not exported exportfs [Line 2]: NFS not licensed; local volume /vol/mirror_source not exported Creation of volume 'mirror_source' with size 2g on containing aggregate 'aggr0' has completed. netapp207> netapp207> netapp207>

netapp207> cifs restart CIFS is already running.

netapp207> cifs shares -add morror_source /vol/morror_source

The share name 'morror_source' will not be accessible by some MS-DOS workstations Directory \"/vol/morror_source\" does not exist.

netapp207> cifs shares -add mirror_source /vol/mirror_source

The share name 'mirror_source' will not be accessible by some MS-DOS workstations netapp207>

netapp207> cifs shares

Name Mount Point Description ---- ----------- -----------

ETC$ /etc Remote Administration BUILTIN\\Administrators / Full Control HOME /vol/vol0/home Default Share everyone / Full Control

C$ / Remote Administration BUILTIN\\Administrators / Full Control mirror_source /vol/mirror_source everyone / Full Control netapp207> netapp207> netapp207> netapp207>

netapp207> cifs domaininfo

NetBios Domain: BCF

Windows 2003 Domain Name: bcf.netapp.com Type: Windows 2003

Filer AD Site: Default-First-Site-Name

Current Connected DCs: \\\\BCF Total DC addresses found: 3 Preferred Addresses:

None Favored Addresses:

192.168.50.206 BCF 192.168.127.1 192.168.47.1 Other Addresses:

None

Connected AD LDAP Server: \\\\bcf.bcf.netapp.com Preferred Addresses:

None Favored Addresses:

192.168.50.206 bcf.bcf.netapp.com 192.168.47.1 bcf.bcf.netapp.com 192.168.127.1 bcf.bcf.netapp.com Other Addresses:

None netapp207>

然后再域控制器上操作:

PDC PDC PDC 选择连接到另一台计算机

点击浏览

再点击

高级

然后点击立即查找,会出现如下对话框:

需要注意的是,此处的用户名密码应该填写域管理员的

我们会发现出现了netapp207主机名,这就是存储

这时候我们在域控的--AD用户和计算机--computers 里面会发现存储

然后我们在服务器管理处右击选管理另一台计算机,输入存储的ip地址

点击共享文件夹,打开共享,出现如下图:

至此,可以管理存储上的cifs共享了。

--------------------------------------------------------------------------------------------------------

因篇幅问题不能全部显示,请点此查看更多更全内容

Top